CVE Published: 12/09/2024 |
CVE Updated: 13/09/2024 |
CVE Year: 2024 Source: talos |
Vendor: Microsoft |
Product: HDAudBus.sys Status : PUBLISHED
CVE-2024-45383 Description
A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus Driver 10.0.19041.3636 (WinBuild.160101.0800). A specially crafted application can issue multiple IRP Complete requests which leads to a local denial-of-service. An attacker can execute malicious script/application to trigger this vulnerability.
Metrics
CVSS Version: 3.1 |
Base Score: 5 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H